For example, if I try to go to this website (techsupportforum.com), this is what it would change to when I press ENTER: "res://C:\WINDOWS\System32\shdoclc.dll/navcancl.htm#http://www.techsupportforum.com" The part in bold is what keeps showing Because of my internet problem, I would have to save the log to a disc and bring it up on the computer I'm using now so I could post it (which Ok. Well i followed the> > direction's on how to correct the registery editor but none of the key's > > and> > values showed up.

Download CWShredder http://www.greyknight17.com/spy/CWShredder.exe Right click a blank part of your desktop & select New->Folder.

Place a shortcut to Panda ActiveScan on your desktop. I downloaded a virus TheGreatCornholio, Nov 5, 2016, in forum: Virus & Other Malware Removal Replies: 34 Views: 1,178 kevinf80 Nov 9, 2016 Thread Status: Not open for further replies. AnonymousSep 16, 2005, 3:27 AM Archived from groups: microsoft.public.windowsxp.help_and_support (More info?)Well, I have to virusus that i cannot get rid-of, wininet.dll is infected with W32.Desktophijack. Otherwise, Restart your computer and boot into Safe Mode by hitting the F8 key repeatedly until a menu shows up (and choose Safe Mode from the list).

button to start the program. I posted before but no one replied. click the Fix Checked box9. The computer seems to be runniing better and i have done the 3 scans and the results are as follows:Active Scan - Incident Status Location Virus:W32/Smitfraud.B Disinfected Operating system Adware:adware/antivirus-gold No

Select the View tab. And I'll post back in a few minutes with those logs you wanted for my infected computer, but I'll have to go online using that computer. I have > and> ran Norton Antivirus and is Up-to-date. When it's finished it will reboot your machine to finish the cleaning process.

anyway, i've read into other posts and have tried to rename the wininet.dll file but windows won't let me since it's currently in use. But my internet is still acting funny.

Sign In Use Facebook Use Twitter Use Windows Live Register now! check this link right here now Please remove just the files from the following paths using Windows Explorer (if present):C:\WINDOWS\System32\hookdump.exe10. Several functions may not work. And oleext.dll with Trojan.Desktophijack.

Who's online This forum has 37,995 registered members. It infected a file called wininet.dll. Back to top #35 miekiemoes miekiemoes Malware Killer Dog Malware Response Team 19,420 posts OFFLINE Gender:Female Location:Belgium Local time:03:21 PM Posted 16 July 2005 - 07:19 AM Glad I could Paste the following locations into KILL BOX one at a time.

And then run your virus scanner. Point to Programs, point to Accessories, point to System Tools, and then click System Restore.

Otherwise, check for updates and download any new reference files before closing the program. Without doing that basic step you will be reinfected!!!! Answer "Yes" and wait for a message to appear similar to "Merged Successfully".Reboot and please do another active scanThanks, Excal 0 #23 Richie_CUFC31 Posted 03 August 2005 - 08:47 AM Richie_CUFC31

I have a relative with a cd burner, but she lives pretty far away. Ignore anyone especially the troll Leythos, who will tag along a nonsense post to this message, who tells you to post it elsewhere. Click Save report. Thanks very much for your help, Rich 0 #29 Excal Posted 03 August 2005 - 10:29 AM Excal Malware Slayer Extraordinaire!

Please re-enable javascript to access full functionality. I will tonight. Well done. Click Yes to confirm.

AnonymousSep 16, 2005, 10:51 AM Archived from groups: microsoft.public.windowsxp.help_and_support (More info?)Logfile of HijackThis v1.99.1Scan saved at 7:12:52 PM, on 9/15/2005Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\system32\spoolsv.exeC:\Program Please start a New Thread if you're having a similar issue.View our Welcome Guide to learn how to use this site. The other two deleted okay. HELP!

It finished immediately and this is the log it gave me: (7/30/05 8:10:13 PM) SPSeHjFix started v1.1.2 (7/30/05 8:10:13 PM) OS: WinXP (5.1.2600) (7/30/05 8:10:13 PM) Language: english (7/30/05 8:10:13 PM) C:\WINDOWS\SYSTEM32\psis80ex.ax C:\WINDOWS\GatorPdpSetup.log C:\WINDOWS\smdat32a.sys C:\ms32.tmp Once back to normal windows...run another Panda scan and post it's log along with a new hijackthis log and let me know about your desktop issue.

Much better!!!!!